Shut the front door: Jewson 'fesses up to data breach

tiggity Silver badge

Re: Card Payments

Some of those can be vulnerable.

Everyone should really be moving to TLS 1.2 by next year at the latest to mitigate against some nasty weaknesses

Most of the payment companies told people about this a while ago.

Even using third parties, there are issues, e.g. if using an API where Jewson have some form of token for a card, if tokens can be grabbed, & credentials to communicate with 3rd party, then can get card details using token in API calls. Details would vary depending what was originally stored, number will be available.

